Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-70293

Опубликовано: 26 авг. 2026
Источник: debian
EPSS Низкий

Описание

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
u-bootunfixedpackage
u-bootno-dsatrixiepackage

Примечания

  • https://www.openwall.com/lists/oss-security/2026/08/28/4

  • https://source.denx.de/u-boot/u-boot/-/commit/fc16c847a1c9c6e0ee1f605849cc500a04c21602 (v2026.04-rc1)

EPSS

Процентиль: 7%
0.00178
Низкий

Связанные уязвимости

ubuntu
5 дней назад

(An issue was discovered in Denx U-Boot before 2026.04. An integer over ...)

nvd
5 дней назад

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.

github
5 дней назад

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.

EPSS

Процентиль: 7%
0.00178
Низкий